Check Point Blog

Threat Research July 10, 2014

Security Disclosure: Google’s iOS Gmail App Potential Target for Threat Actors

Security Disclosure: As part of our ongoing research into Apple’s iOS environment, we analyze mobile apps from various perspectives. During a routine analysis of the Gmail iOS app we unexpectedly came across a vulnerability which enables a threat actor that is performing a Man-in-the-Middle attack to view, and even modify, encrypted communications. The Vulnerability: Gmail’s iOS App Does Not Perform Certificate Pinning.

Read More